Skip to main content

Overview

AlphaSOC ingests and analyzes telemetry from a diverse array of sources, empowering security teams across varied enterprise environments. Below is a table of officially supported data origins that include the range of cloud platforms, SaaS applications, network sensors, and more that AlphaSOC seamlessly integrates with.

ProductData Origins
1Password BETA1password-event-audit, 1password-item-audit, 1password-login-audit
AWS - CloudTrailaws-cloudtrail
AWS - Elastic Kubernetes Service BETAkube-audit
AWS - Route 53aws-route53
AWS - VPC Flowaws-vpc-flow
Atlassian BETAatlassian-audit
Carbon Blackcarbonblack-netconn
Confluence BETAconfluence-audit
CoreDNSdnstap
Corelightzeek-conn, zeek-dhcp, zeek-dns, zeek-http, zeek-ssl
CrowdStrikecrowdstrike-aid-master, crowdstrike-data
GCP - Audit Logsgcp-audit
GCP - Cloud DNSgcp-dns
GCP - Kubernetes Enginegcp-kube-audit
GCP - VPC Flowgcp-vpc-flow
GitHub BETAgithub-audit
Google Security Operations BETAgoogle-secops-udm
Google Workspacegoogle-workspace
JAMF BETAjamf-audit, jamf-compliance-reporter
Jira BETAjira-audit
Kuberneteskube-audit
LimaCharlielimacharlie
Microsoft 365 PLANNINGmicrosoft-365-audit
Microsoft Azure - Activityazure-activity-audit
Microsoft Azure - NSG Flow Logs DEPRECATEDazure-nsg-flow
Microsoft Azure - VNet Flowazure-vnet-flow
Microsoft Azure Kubernetes Service PLANNING
Microsoft Entra ID BETAmicrosoft-entra-audit
Okta BETAokta-audit
Palo Alto Networkspan
SentinelOnesentinelone-deep-visibility
Slackslack-audit
Snowflake PLANNING
Systemd Journaljournald
Zeekzeek-conn, zeek-dhcp, zeek-dns, zeek-http, zeek-ssl
Otherazure-device-network, ocsf

Custom Logs

Beyond the listed sources, AlphaSOC can ingest telemetry in any custom log format, ensuring flexibility for diverse data environments. Additionally, it supports Sigma, an open-source standard for crafting detection rules, empowering you to create custom detections that enhance your security capabilities across virtually any structured log data. After configuring your preferred transport method, you can write these custom Sigma rules to strengthen your security monitoring.

Need AlphaSOC to work with a unique log format? Contact support@alphasoc.com, and our team will collaborate with you to build a custom parser tailored to your needs.